PfBlocker in Alias Only Mode - Help
-
After changing pfBlocker to Alias Only mode, the Widget on the main dashboard does not update with blocked packet count. When I go back to the deny both, the widget starts to update but the rules keep moving. How do I keep Alias Only mode yet have the dashboard widget show the block attempts ?
-
After changing pfBlocker to Alias Only mode, the Widget on the main dashboard does not update with blocked packet count. When I go back to the deny both, the widget starts to update but the rules keep moving. How do I keep Alias Only mode yet have the dashboard widget show the block attempts ?
In "Alias" mode, the widget doesn't update the packet counts unfortunately. However using "Alias" mode offers better control of the Blocklists so you can configure each interface with different settings and/or configure Aliases to block/reject to certain local addresses or ports or schedules etc…
-
Thank you for your reply.
Is there anyway besides the widget to be able to look at the packet count like it showed on the widget ?
-
This is one option.
https://forum.pfsense.org/index.php?topic=73986.msg416999#msg416999
-
Thank you for your help. I appreciate it.
-
Is there anyway besides the widget to be able to look at the packet count like it showed on the widget ?
Or, use the alias lists to feed Snort and watch the Snort widget fill up… here's the cookbook on that:
https://forum.pfsense.org/index.php?topic=64674.0Rick
-
Thanks Rick.